Skip to content

Software - Sysmon

Go to Automation

View in GitLab

Description

This playbook installs or upgrades Sysmon on a target host. It copies the Sysmon installer, checks the current installed version, and compares it with the installer version. If the installer version is newer, it uninstalls the old version and installs the new one. It also handles the configuration file and restarts the winlogbeat service if needed.

Credentials

  • sys_ansible_windows

Input

Variable Description
target Target host for the installation
version Version of Sysmon to install
exe_action Action to perform (install/uninstall)

Output

None

Dependencies